


Remote live forensics and incident response framework with Python agent for collecting forensic data from endpoints, including memory, disk, and…

PowerShell tool that extracts Active Directory artifacts via LDAP or ADWS and generates Excel reports for auditing, DFIR, and penetration testing.

An advanced memory forensics framework

UNIX-like reverse engineering framework and command-line toolset.

Labtainers: A Docker-based cyber lab framework

Malicious HTTP traffic explorer


Python scriptable Reverse Engineering Sandbox, a Virtual Machine instrumentation and inspection framework based on QEMU

Process heap analysis framework - Windows/Linux - record type inference and forensics